Loading
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
Use CWE-476, Cisco vendor hub and Firewall Services Module product page to widen CVE-2004-0079 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-6367, CVE-2012-0356 and CVE-2011-0394 for nearby disclosures in the same product family. Additional editorial context is available in The Weekly Cybersecurity Brief: January 30th, 2026.